Overview of the December 2006 Microsoft patches and their status.
| # | Affected | Contra Indications | Known Exploits | Microsoft rating | ISC rating(*) | |
|---|---|---|---|---|---|---|
| clients | servers | |||||
| MS06-072 | Internet Explorer - remote code execution CVE-2006-5579 CVE-2006-5581 CVE-2006-5578 CVE-2006-5577 |
No known problems KB 925454 |
No known exploits |
Critical | Critical | Important |
| MS06-073 | Visual Studio 2005 - remote code execution CVE-2006-4704 |
No known problems KB 925674 |
Exploit publicly available |
Critical | PATCH NOW | Important |
| MS06-074 | SNMP - remote code execution - buffer overflow CVE-2006-5583 |
No known problems KB 926247 We are aware of a problem with a link in the advisory for Win2000 SP4 pointing to the MS06-078 fix. |
Exploit available in for pay program |
Important | Critical | Critical |
| MS06-075 | csrss - privilege escalation CVE-2006-5585 |
No known problems KB 926255 |
No known exploits |
Important | Important | Important |
| MS06-076 | Outlook express - remote code execution CVE-2006-2386 |
No known problems KB 923694 |
No known exploits | Important |
Important |
Less Urgent |
| MS06-077 | RIS - remote code execution CVE-2006-5584 |
No known problems KB 926121 |
No known exploits | Important | Important | Important |
| MS06-078 | Windows Media player - remote code execution CVE-2006-4702 CVE-2006-6134 |
No known problems KB 923689 KB 925398 |
Exploits available for the .asx vulnerability |
Critical | PATCH NOW | Important |
| Re-release MS06-059 |
Excel CVE-2006-2387 CVE-2006-3431 CVE-2006-3867 CVE-2006-3875 |
No known problems KB 924164 Fixes installation failures in Excel 2002 |
Exploits are publicly available |
Critical | Critical | Less Urgent |
--
Swa Frantzen -- Section 66
Login here to post a comment. Diary Archive